aws-samples / siem-on-amazon-opensearch-service

A solution for collecting, correlating and visualizing multiple types of logs to help investigate security incidents.
MIT No Attribution
579 stars 191 forks source link

Error parsing S3 key in Config History #355

Closed nakajiak closed 1 year ago

nakajiak commented 1 year ago

If the config history contains GuardDuty resources, there will be a parse error recognizing it as GuardDuty

e.g.) AWSLogs/123456789012/Config/ap-northeast-1/2023/2/20/ConfigHistory/123456789012_Config_ap-northeast-1_ConfigHistory_AWS::GuardDuty::Detector_20230220T150801Z_20230220T150801Z_1.json.gz